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Art Unit: 2617 

The Art Unit location of your application in the USPTO has changed. To aid in 
correlating any papers for this application, all further correspondence regarding this 
application should be directed to Art Unit 2617. 

DETAILED ACTION 

Response to Arguments 

1. Applicant's arguments with respect to claims 1-11, 13-26 and 28-40 have been 
considered but are moot in view of the new ground(s) of rejection. 

Claim Rejections - 35 USC § 102 

2. The following is a quotation of the appropriate paragraphs of 35 U.S.C. 102 that 
form the basis for the rejections under this section made in this Office action: 

The following is a quotation of the appropriate paragraphs of 35 U.S.C. 102 that 
form the basis for the rejections under this section made in this Office action: 
A person shall be entitled to a patent unless - 

(e) the invention was described in (1) an application for patent, published under section 122(b), by 
another filed in the United States before the invention by the applicant for patent or (2) a patent 
granted on an application for patent by another filed in the United States before the invention by the 
applicant for patent, except that an international application filed under the treaty defined in section 
351(a) shall have the effects for purposes of this subsection of an application filed in the United States 
only if the international application designated the United States and was published under Article 21(2) 
of such treaty in the English language. 

3. Claims 1-9, 11, 13-20, 22-24, 26, 28-32, 34 and 40 are rejected under 35 
U.S.C. 102(e) as being anticipated by Leivo et al (US 6,782,080). 

Regarding claims 1, 13, 31 and 32, Leivo teaches in a transceiver (see fig. 3, item 
33), a method for authenticating operation of the transceiver with a control station within 
a wireless remote identification system (see Abstract and Title, see "authenticating"), 
the method comprising: receiving transceiver configuration information including a 
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network address (see column 7, lines 6-25, see "code") and transceiver authentication 
credentials (see column 7, lines 6-25, see "code"), receiving an authentication request 
from a control station within the remote identification system (see column 7, lines 6-25, 
see "request" or "requested"), applying authentication processing to request information 
within the authentication request in conjunction with the transceiver authentication 
credentials to produce an authentication response (also see column 7, lines 6-25, see 
"request" or "requested"), and transmitting the authentication response to the control 
station to allow the control station to determine if the transceiver is authorized to 
communicate within the remote identification system (see column 7, lines 6-25, see 
"response"). 

Regarding claims 2 and 17, Leivo further teaches i) a transceiver identification 
code uniquely assigned to the transceiver (see column 8, lines 32-47, see "code"), and 

ii) a transceiver instruction set containing a set of authentication values and 
corresponding authentication instructions (see column 7, lines 6-25). 

Regarding claims 3 and 18, Leivo further teaches periodically receiving 
replacement transceiver authentication credentials to replace the transceiver 
authentication credentials formerly received by the transceiver (see column 7, lines 6- 
25). 

Regarding claims 4 and 19, Leivo further teaches the request information within 
the authentication request includes: i) an request authentication result (see column 7, 
lines 6-25), and ii) a request data value (see column 7, lines 6-25, see "request"), 
wherein applying authentication processing to request information within the 
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authentication request in conjunction with the transceiver authentication credentials to 
produce an authentication response (see column 7, lines 6-25, see "code") comprises: 
identifying an authentication instruction that matches the request authentication result 
(see column 7, lines 25-54), and applying the authentication instruction that matches the 
request authentication result to the request data value from the authentication request 
to produce the authentication response (see column 7, lines 25-54). 

Regarding claims 5 and 20, Leivo further teaches applying an authentication 
function to authentication values in the set of authentication values within the 
transceiver authentication credentials to produce corresponding transceiver 
authentication results (see column 7, lines 6-25), and for each transceiver 
authentication result produced, determining if the transceiver authentication result 
matches the request authentication result for that authentication value (see column 7, 
lines 6-25), and if the transceiver authentication result matches the request 
authentication result for that authentication value (see column 7, lines 6-25), performing 
the operation applying the authentication instruction to produce the authentication 
response (see column 7, lines 6-25). 

Regarding claims 7 and 22, Leivo further teaches applying the authentication 
instruction to the request data value in conjunction with the transceiver identification 
code to obtain the authentication response (see column 7, lines 6-25 and see column 8, 
lines 32-48). 

Regarding claims 8 and 23, Leivo further teaches i) an authentication 
acknowledgement is received from the control station indicating that the transceiver was 
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successfully authenticated (see column 7, lines 6-25), and ii) a number of repeated 
attempts to authenticate the transceiver each fail (see column 7, lines 6-25). 

Regarding claims 9 and 24, Leivo further teaches i) a different request 
authentication result for use by the transceiver to select an authentication instruction 
(see column 8, lines 32-48), and ii) a different request data value for use by the 
transceiver during application of the selected authentication instruction (see column 8, 
lines 32-48). 

Regarding claims 11 and 26, Leivo further teaches performing an automatic 
download operation to receive the transceiver authentication credentials during trusted 
time period of operation of the transceiver (see column 8, lines 32-48). 

Regarding claims 14 and 29, Leivo selecting a transceiver authentication value 
from the transceiver authentication credentials (see column 7, lines 25-53 and column 
8, lines 32-48), and applying an authentication function to the transceiver authentication 
value to produce the request authentication result for use in the authentication request 
(see column 8, lines 32-48). 

Regarding claims 15 and 30, Leivo further teaches applying an authentication 
instruction corresponding to the selected transceiver authentication value to the request 
data value in conjunction with a transceiver identification code of the transceiver to 
which the authentication request was provided in order to produce a control station 
response (see column 8, lines 32-48), and comparing the control station response to the 
authentication response answer within the authentication response to determine if they 
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are equivalent, and if they are equivalent, indicating that the authentication response 
answer is valid (see column 8, lines 32-48). 

Regarding claims 16 and 28, Leivo teaches a transceiver comprising: a memory 
(see column 3, lines 52-67, see "database"), a communications interface (see fig. 3, 
connection between devices), an interconnection mechanism coupling the memory (see 
column 3, lines 52-67, see "database"), the processor (see column 5, lines 12-13, see 
"processing"), and the communications interface (see fig. 3, connection between 
devices), the memory encoded with an authentication process that when executed by 
the processor (see Abstract and Title, see "authenticating"), causes the transceiver 
authenticate operation of the transceiver with a control station within a wireless remote 
identification system by causing the transceiver to perform the operations of: receiving, 
via the communications interface, transceiver configuration information including a 
network address and transceiver authentication credentials (see column 7, lines 6-25, 
see "code" and see column 8, lines 32-48), receiving, via the communications interface, 
an authentication request from a control station within the remote identification system 
(see column 7, lines 6-25, see "request" or "requested"), applying authentication 
processing to request information within the authentication request in conjunction with 
the transceiver authentication credentials to produce an authentication response (see 
column 7, lines 6-25, see "request" or "requested"), and transmitting, via the 
communications interface, the authentication response to the control station to allow the 
control station to determine if the transceiver is authorized to communicate within the 
remote identification system (see column 7, lines 6-25, see "response"). 
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Regarding claim 34, Leivo further teaches maintaining a set of authentication 
instructions and corresponding authentication values generated by the transceiver, 
matching an authentication value received in the authentication request from the control 
station to a respective corresponding authentication value in the set (see column 7 lines 
25-53 and see column 8, lines 32-48), identifying a corresponding authentication 
instruction associated with the corresponding authentication value in the set and 
applying the corresponding authentication instruction to a data value in the 
authentication request to produce the authentication response (see column 7 lines 25- 
53). 

Regarding claim 40, Leivo further teaches applying authentication processing to 
request information within the authentication request in conjunction with the transceiver 
authentication credentials to produce an authentication response includes: based on 
information in the authentication request (see column 7, lines 6-25, see "request" or 
"requested"), identifying one of multiple authentication instructions maintained at the 
transceiver, and applying the identified one of multiple authentication instructions to i) a 
data value in the authentication request received from the control station and ii) an 
identification code associated with the transceiver to produce the authentication 
response (see column 7, lines 6-25, see "response"). 

Claim Rejections - 35 USC § 103 

4. The following is a quotation of 35 U.S.C. 103(a) which forms the basis for all 
obviousness rejections set forth in this Office action: 
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(a) A patent may not be obtained though the invention is not identically disclosed or described as set 
forth in section 102 of this title, if the differences between the subject matter sought to be patented and 
the prior art are such that the subject matter as a whole would have been obvious at the time the 
invention was made to a person having ordinary skill in the art to which said subject matter pertains. 
Patentability shall not be negatived by the manner in which the invention was made. 

5. Claims 6 and 21 are rejected under 35 U.S.C. 103(a) as being unpatentable over 

Leivo et al (US 6,782,080) in view of Phillips et al (US 6,721 ,555). 

Regarding claims 6 and 21, Leivo teaches claim 5. Leivo does not specifically 
disclose the request authentication result is a hash value result produced from a hash 
function within the control station and wherein the authentication function is an 
equivalent hash function within the transceiver and wherein the request authentication 
result is calculated by the control station using the hash function on a copy of the 
authentication values in the set of authentication values within the transceiver 
authentication credentials that is programmed into the control station. 

Phillips teaches the request authentication result is a hash value result produced 
from a hash function within the control station and wherein the authentication function is 
an equivalent hash function within the transceiver and wherein the request 
authentication result is calculated by the control station using the hash function on a 
copy of the authentication values in the set of authentication values within the 
transceiver authentication credentials that is programmed into the control station (see 
Title and column 6, lines 5-28). 

Therefore, it would have been obvious to one of ordinary skill in the art at the 
time the invention was made to provide the teaching of Phillips into the system of Leivo 
in order to provide a system for efficiently accommodating an authentication protocol in 
a communication network (see Phillips, Abstract). 
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6. Claims 10 and 25 are rejected under 35 U.S.C. 103(a) as being unpatentable 
over Leivo et al (US 6,782,080) in view of Bolle et al (US 6,819,219). 

Regarding claims 10 and 25, Leivo teaches claim 1. Leivo does not specifically 
disclose the transceiver is an RFID transceiver and wherein the control station operates 
an RFID management application. 

Bolle teaches the transceiver is an RFID transceiver and wherein the control 
station operates an RFID management application (see column 5, line 61 to column 6, 
line 4). 

Therefore, it would have been obvious to one of ordinary skill in the art at the 
time the invention was made to provide the teaching of Bolle into the system of Leivo in 
order to provide a system for efficiently accommodating an authentication protocol in a 
communication network (see Phillips, Abstract). 

7. Claims 33 and 35 are rejected under 35 U.S.C. 103(a) as being unpatentable 
over Leivo et al (US 6,782,080) in view of Boylan et al (US 2005/0166091A1). 

Regarding claim 33, Leivo teaches the transceiver authentication credentials 
(see column 7, lines 6-25). Leivo does not specifically disclose the transceiver 
authentication credentials includes at least one of a roll forward and a roll back 
instruction and wherein a request data value in the authentication request from the 
control station indicates an amount by which to roll an instruction set associated with the 
transceiver. 
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Boylan teaches the transceiver authentication credentials includes at least one of 
a roll forward and a roll back instruction and wherein a request data value in the 
authentication request from the control station indicates an amount by which to roll an 
instruction set associated with the transceiver (see page 5, claim 12 and see page 3, 
[0067]). 

Therefore, it would have been obvious to one of ordinary skill in the art at the 
time the invention was made to provide the teaching of Boylan into the system of Leivo 
in order to provide a system to meet the demands of customers and hosting 
organizations for rapid change of business entities and real time performance (see 
Boylan, page 1 , [0008]). 

Regarding claim 35, Leivo teaches maintaining a set of authentication 
instructions and corresponding authentication values generated by the transceiver (see 
Abstract and column 7, lines 6-25). Leivo does not specifically disclose and shifting a 
relationship position of the authentication instructions relative to the corresponding 
authentication values in the set by an amount specified by a data value in the 
authentication request such that, after shifting the relationship position, each 
corresponding authentication value in the set corresponds to a different authentication 
instruction than prior to shifting the relationship position of the authentication instruction. 

Boylan teaches shifting a relationship position of the authentication instructions 
relative to the corresponding authentication values in the set by an amount specified by 
a data value in the authentication request such that, after shifting the relationship 
position, each corresponding authentication value in the set corresponds to a different 
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authentication instruction than prior to shifting the relationship position of the 
authentication instruction (see page 5, claim 12 and see page 3, [0067]). 

Therefore, it would have been obvious to one of ordinary skill in the art at the 
time the invention was made to provide the teaching of Boylan into the system of Leivo 
in order to provide a system to meet the demands of customers and hosting 
organizations for rapid change of business entities and real time performance (see 
Boylan, page 1, [0008]). 

8. Claims 36-39 are rejected under 35 U.S.C. 103(a) as being unpatentable over 
Leivo et al (US 6,782,080) in view of Carroll et al (US 6,61 1 ,91 3). 

Regarding claim 36, Leivo teaches the transceiver authentication credentials 
(see Abstract and column 7, lines 6-25). Leivo does not specifically disclose receiving a 
first alphanumeric value and a corresponding first instruction, receiving a second 
alphanumeric value and a corresponding second instruction, and maintaining the first 
alphanumeric value and the corresponding first instruction at the transceiver as a first 
value-instruction pair, maintaining the second alphanumeric value and the 
corresponding second instruction at the transceiver as a second value-instruction pair. 

Carroll teachers receiving a first alphanumeric value and a corresponding first 
instruction, receiving a second alphanumeric value and a corresponding second 
instruction, and maintaining the first alphanumeric value and the corresponding first 
instruction at the transceiver as a first value-instruction pair, maintaining the second 
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alphanumeric value and the corresponding second instruction at the transceiver as a 
second value-instruction pair (see column 14, lines 29-36). 

Therefore, it would have been obvious to one of ordinary skill in the art at the 
time the invention was made to provide the teaching of Carroll into the system of Leivo 
in order to provide an embedded private-key algorithm to ensure proper authentication 
key transfer (see Carroll, Abstract). 

Regarding claim 37, Leivo teaches the transceiver authentication credentials 
(see Abstract and column 7, lines 6-25). Leivo does not specifically applying the 
authentication processing at the transceiver to the first alphanumeric value to generate 
a first transceiver generated result associated with the first alphanumeric value and the 
corresponding first instruction, applying the authentication processing at the transceiver 
to the second alphanumeric value to generate a second transceiver generated result 
associated with the second alphanumeric value and the corresponding second 
instruction, maintaining the first transceiver generated result along with the first value- 
instruction pair, and maintaining the second transceiver generated result along with the 
second value-instruction pair. 

Carroll teachers applying the authentication processing at the transceiver to the 
first alphanumeric value to generate a first transceiver generated result associated with 
the first alphanumeric value and the corresponding first instruction, applying the 
authentication processing at the transceiver to the second alphanumeric value to 
generate a second transceiver generated result associated with the second 
alphanumeric value and the corresponding second instruction, maintaining the first 
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transceiver generated result along with the first value-instruction pair, and maintaining 
the second transceiver generated result along with the second value-instruction pair 
(see column 14, lines 29-36). 

Therefore, it would have been obvious to one of ordinary skill in the art at the 
time the invention was made to provide the teaching of Carroll into the system of Leivo 
in order to provide an embedded private-key algorithm to ensure proper authentication 
key transfer (see Carroll, Abstract). 

Regarding claim 38, Leivo further teaches identifying an authentication value in 
the authentication request received from the control station, matching the authentication 
value in the authentication request to one of the first transceiver generated result and 
the second transceiver generated result (see Abstract and column 7, lines 6-25), and if 
the authentication value in the authentication request received from the control station 
matches the first transceiver generated result, utilizing the corresponding first instruction 
to generate a response to the control station (see Abstract and column 7, lines 6-25 and 
see column 8, lines 32-48), and if the authentication value in the authentication request 
received from the control station matches the second transceiver generated result, 
utilizing the corresponding second instruction to generate a response to the control 
station (see Abstract and column 7, lines 6-25). 

Regarding claim 39, Leivo further teaches identifying an authentication value in 
the authentication request received from the control station (see Abstract and column 7, 
lines 6-25), attempting to match the authentication value in the authentication request to 
one of the first transceiver generated result and the second transceiver generated result 
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(see column 7, lines 6-25 and column 8, lines 32-48), and if the authentication value in 
the authentication request received from the control station does not match either of the 
first and second transceiver generated result (see Abstract and column 7, lines 6-25), 
failing authentication of the transceiver (see Abstract, column 7, lines 6-25 and column 

8. lines 32-48). 

Allowable Subject Matter 

9. Claims 12 and 27 are objected to as being dependent upon a rejected base 
claim, but would be allowable if rewritten in independent form including all of the 
limitations of the base claim and any intervening claims. 

Regarding claims 12 and 27, claims 12 and 27 are objected for the reasons as 
stated in the Office action page 9 (dated 11/02/05). 

Conclusion 

10. Any inquiry concerning this communication or earlier communications from the 
examiner should be directed to Nghi H. Ly whose telephone number is (571) 272-791 1 . 
The examiner can normally be reached on 8:30 am-5:30 pm Monday-Friday. 

If attempts to reach the examiner by telephone are unsuccessful, the examiner's 
supervisor, Marsha Banks-Harold can be reached on (571) 272-7905. The fax phone 
number for the organization where this application or proceeding is assigned is 571- 
273-8300. 
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Information regarding the status of an application may be obtained from the 
Patent Application Information Retrieval (PAIR) system. Status information for 
published applications may be obtained from either Private PAIR or Public PAIR. 
Status information for unpublished applications is available through Private PAIR only. 
For more information about the PAIR system, see http://pair-direct.uspto.gov. Should 
you have questions on access to the Private PAIR system, contact the Electronic 
Business Center (EBC) at 866-217-9197 (toll-free). If you would like assistance from a 
USPTO Customer Service Representative or access to the automated information 
system, call 800-786-9199 (IN USA OR CANADA) or 571-272-1000. 



Nhi H. Ly 



